SSLBL: Malicious SSL certificate detected (Guildma C&C)

SID: 903209551Rev: 10 views
Sourcesslbl/ssl-fp-blacklist
CreatedApril 15, 2026
UpdatedApril 15, 2026
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (Guildma C&C)"; tls_cert_fingerprint; content:"4f:d7:3d:39:21:ff:83:cf:35:06:67:81:30:40:a5:0f:53:19:8e:59"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/4fd73d3921ff83cf350667813040a50f53198e59/; sid:903209551; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!